Moxa Eds-510E Firmware vulnerabilities

6 known vulnerabilities affecting moxa/eds-510e_firmware.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH3

Vulnerabilities

Page 1 of 1
CVE-2020-6991CRITICALCVSS 9.8≤ 5.22020-03-24
CVE-2020-6991 [CRITICAL] CWE-521 CVE-2020-6991: In Moxa EDS-G516E Series firmware, Version 5.2 or lower, weak password requirements may allow an att In Moxa EDS-G516E Series firmware, Version 5.2 or lower, weak password requirements may allow an attacker to gain access using brute force.
nvd
CVE-2020-6981CRITICALCVSS 9.8≤ 5.22020-03-24
CVE-2020-6981 [CRITICAL] CWE-798 CVE-2020-6981: In Moxa EDS-G516E Series firmware, Version 5.2 or lower, an attacker may gain access to the system w In Moxa EDS-G516E Series firmware, Version 5.2 or lower, an attacker may gain access to the system without proper authentication.
nvd
CVE-2020-7007CRITICALCVSS 9.8≤ 5.22020-03-24
CVE-2020-7007 [CRITICAL] CWE-121 CVE-2020-7007: In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the attacker may execute arbitrary codes or In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the attacker may execute arbitrary codes or target the device, causing it to go out of service.
nvd
CVE-2020-7001HIGHCVSS 7.5≤ 5.22020-03-24
CVE-2020-7001 [HIGH] CWE-327 CVE-2020-7001: In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the affected products use a weak cryptograp In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the affected products use a weak cryptographic algorithm, which may allow confidential information to be disclosed.
nvd
CVE-2020-6997HIGHCVSS 7.5≤ 5.22020-03-24
CVE-2020-6997 [HIGH] CWE-319 CVE-2020-6997: In Moxa EDS-G516E Series firmware, Version 5.2 or lower, sensitive information is transmitted over s In Moxa EDS-G516E Series firmware, Version 5.2 or lower, sensitive information is transmitted over some web applications in cleartext.
nvd
CVE-2020-6979HIGHCVSS 7.5≤ 5.22020-03-24
CVE-2020-6979 [HIGH] CWE-321 CVE-2020-6979: In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the affected products use a hard-coded cryp In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the affected products use a hard-coded cryptographic key, increasing the possibility that confidential data can be recovered.
nvd